A.5.11
    Organizational Controls

    Return of assets

    Personnel and external parties should return all of the organization's assets in their possession upon termination of their employment, contract or agreement.

    Purpose

    To ensure organizational assets are returned and access rights are revoked when personnel or external parties leave the organization.

    Implementation Guidance

    Maintain a checklist of assets to be returned upon termination

    Include physical assets, credentials, access cards, and devices

    Ensure data is backed up and removed from personal devices

    Document the return process and obtain confirmation of asset return

    Revoke all access rights immediately upon termination

    Recommended Tools

    ISO 27001 Services from the Directory

    These providers can help you implement A.5.11 and achieve ISO 27001 certification.

    By the team behind ISMS Directory

    Implementing A.5.11 for a client?

    ISMS Copilot drafts policies, evidence, and SoA wording for A.5.11 Return of assets. Built for compliance professionals.

    Try ISMS Copilot free